
First Shai-Hulud Worm Clones Emerge to Target NPM Developers
Malware&ThreatsmalwareShai-Huludsourcecodeworm
At least one threat actor has utilized the recently released source code of the Shai-Hulud worm to conduct attacks targeting NPM developers. The malware, identified as a worm, leverages the disclosed code to propagate or compromise systems. No specific technical details, such as attack vectors, infection methods, or impacted versions, were provided in the report. The emergence of these clones follows the public availability of the Shai-Hulud source code, though no exact timeline or dates were mentioned. The primary focus of the attacks appears to be developers within the NPM ecosystem. No CVE IDs or additional impact assessments were included.